Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:22656
HistoryMar 09, 2020 - 6:06 a.m.

Denial Of Service (DoS)

2020-03-0906:06:43
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
12

0.002 Low

EPSS

Percentile

58.7%

urllib3 is vulnerable to denial of service. The _encode_invalid_chars function in util/url.py allows an attacker to cause a denial of service condition through long processing time due to an inefficient algorithm when parsing invalid characters, potentially resulting in an application crash when system resources are depleted.

CPENameOperatorVersion
urllib3le1.25.7

0.002 Low

EPSS

Percentile

58.7%